Systems and methods for facilitating network transactions based on user authentication
Abstract
Systems and methods are provided for facilitating network transactions based on user authentication. One example computer-implemented method includes receiving a request to authenticate a user in connection with a network interaction and identifying a device identifier (ID) specific to a card for an account indicated in the request. The method also includes transmitting, to the card based on the device ID, a challenge command for authentication of the user, whereby the card instructs the user to biometrically authenticate at the card via an on-card indicator, and receiving, from the card, a challenge question advisement including an authentication result of the user. The method then also includes, based on the authentication result of the user, responding to the request to authenticate, to a merchant plug-in (MPI) computing device, with an authentication code indicative of the authentication result.
Claims
exact text as granted — not AI-modifiedWhat is claimed is:
1 . A computer-implemented method for use in facilitating authentication of a user in connection with a network interaction, the method comprising:
receiving, at a computing device, a request to authenticate a user in connection with a network interaction, the request including an identifier of an account specific to a user; identifying, by the computing device, a device identifier (ID) specific to a card for the account based on the identifier of the account; transmitting, by the computing device, to the card based on the device ID, a challenge command for authentication of the user, whereby the card instructs, via an on-card indicator, the user to biometrically authenticate at the card; receiving, by the computing device, from the card, a challenge question advisement, the challenge question advisement including an authentication result based on a comparison between biometric data captured at the card by the user and reference biometric data included in the card; and based on the authentication result in the challenge question advisement, responding to the request to authenticate, by the computing device, to a merchant plug-in (MPI) computing device, with an authentication code indicative of the authentication result.
2 . The computer-implemented method of claim 1 , wherein the device ID includes a mobile identification number unique to a mobile network adapter of the card on a mobile network; and
wherein transmitting the challenge command includes transmitting the challenge command, through the mobile network, to the mobile network adapter.
3 . The computer-implemented method of claim 1 , further comprising transmitting a network address to the MPI computing device, in connection with the challenge question, whereby a virtual location associated with a merchant displays a message, based on the network address, to inform the user to authenticate at the card.
4 . The computer-implemented method of claim 1 , wherein responding to the request to authenticate with the authentication code, to the MPI computing device, includes responding to the request to authenticate with the authentication code, to the MPI computing device, via a directory server included in a payment network.
5 . The computer-implemented method of claim 4 , further comprising:
receiving, by the computing device, via the payment network, from a merchant computing device, a request to authorize the network interaction, the request to authorize including the authentication code; determining, by the computing device, to approve the network interaction based, at least in part, on the authentication code from the request to authorize; and transmitting to the merchant computing device, by the computing device, via the payment network, a response to the request to authorize including an approval of the network interaction.
6 . The computer-implemented method of claim 5 , wherein the computing device includes at least one of an access control server (ACS) or an issuer computing device.
7 . The computer-implemented method of claim 1 , further comprising determining whether the card is a participant in on-card direct authentication; and
wherein transmitting the challenge command includes transmitting the challenge command in response to determining the card is the participant in on-card authentication.
8 . A computer-implemented method for use in facilitating on-card authentication of a user in connection with an interaction, the method comprising:
for on-card authentication of a user, in connection with an interaction to an account, receiving, at a card, via a mobile network adapter of the card, from an access control server (ACS), a challenge command for authentication of the user, the card being specific to the account and including at least a physical indicator and a fingerprint sensor; manipulating the physical indicator on the card, as an instruction to the user to provide a fingerprint to the fingerprint sensor on the card; capturing, at the fingerprint sensor of the card, fingerprint data from the user; comparing, by the card, the captured fingerprint data with reference fingerprint data included in a memory of the card; and returning, by the card, via the mobile network adapter, to the ACS, a challenge command advisement, the challenge command advisement including an authentication result for the user, based on the comparison between the captured fingerprint data and the reference fingerprint data.
9 . The method of claim 8 , wherein the physical indicator includes a light-emitting diode (LED); and
wherein manipulating the physical indicator includes toggling the LED ON/OFF at a defined interval.
10 . The method of claim 8 , wherein the physical indicator includes an audible indicator.
11 . The method of claim 8 , wherein manipulating the physical indicator includes manipulating, by a processor of the card, the physical indicator; and
wherein the processor includes an EMV chip.
12 . The method of claim 8 , wherein the card further includes at least one payment account credential for the account on a front side of the card; and
wherein the indicator is included on the front side of the card.
13 . The method of claim 8 , further comprising:
transmitting, by the ACS, the challenge command to the card, in response to an authentication request from a merchant plug-in (MPI) computing device associated with a merchant involved in the interaction; receiving, at the ACS, the challenge command advisement from the card; and providing, by the ACS, to the MPI computing device, an authentication code based on the challenge command advisement.
14 . The method of claim 13 , further comprising determining, by the ACS, that the account is a participant in on-card direct authentication; and
in response to the account being the participant, identifying, by the ACS, the card based on a device ID assigned to the card; and wherein transmitting the challenge command includes transmitting the challenge command to the card based on the device ID.
15 . The method of claim 14 , wherein the device ID includes a mobile identification number unique to the mobile network adapter of the card on a mobile network; and
wherein transmitting the challenge command includes transmitting the challenge command, through the mobile network.
16 . The method of claim 8 , wherein the card is compliant with an ISO/IEC 7810 ID-1 standard for payment cards.Join the waitlist — get patent alerts
Track US2023012658A1 — get alerts on status changes and closely related new filings.
We store only your email — no account needed. See our privacy policy.